Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-10-2016 Ran by Didier (08-10-2016 17:48:56) Running from C:\Users\Didier\Desktop Windows 7 Ultimate Service Pack 1 (X64) (2014-03-21 14:45:26) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-706769772-126148547-2541344145-500 - Administrator - Disabled) ASPNET (S-1-5-21-706769772-126148547-2541344145-1004 - Limited - Enabled) Didier (S-1-5-21-706769772-126148547-2541344145-1001 - Administrator - Enabled) => C:\Users\Didier Guest (S-1-5-21-706769772-126148547-2541344145-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-706769772-126148547-2541344145-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 21.0.0.176 - Adobe Systems Incorporated) Adobe CS6 Design and Web Premium (HKLM-x32\...\{402F6F2E-5683-491C-977D-0CA599A07CAF}) (Version: 6 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Reader XI (11.0.17) - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AB0000000001}) (Version: 11.0.17 - Adobe Systems Incorporated) Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.) Apple Application Support (32 bits) (HKLM-x32\...\{3540ADD5-822B-47FB-B1C2-CD7B2C8E9FEC}) (Version: 4.0.2 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{C9C0FE2C-602E-49D7-8C42-5B9E8FF04798}) (Version: 4.0.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{FD244E19-6EFE-4A2D-948A-0D45D4C168BE}) (Version: 9.0.0.26 - Apple Inc.) Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform) Complément Microsoft Enregistrer en tant que PDF ou XPS pour programmes Microsoft Office 2007 (HKLM-x32\...\{90120000-00B2-040C-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) devolo Cockpit (HKLM-x32\...\dlancockpit) (Version: 4.3.1.0 - devolo AG) Dropbox (HKU\S-1-5-21-706769772-126148547-2541344145-1001\...\Dropbox) (Version: 11.4.22 - Dropbox, Inc.) HP Photo Creations (HKU\S-1-5-21-706769772-126148547-2541344145-1001\...\HP Photo Creations) (Version: 1.0.0.19662 - HP) iTunes (HKLM\...\{88509E20-3936-4D88-A1C0-B274C7BB5151}) (Version: 12.3.0.44 - Apple Inc.) Java(TM) 7 Update 5 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417005FF}) (Version: 7.0.50 - Oracle) Logiciel de base du périphérique HP Photosmart 5520 series (HKLM\...\{97104D7C-FAC1-40A2-A34D-7950424FAEDE}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) ma Livebox (HKLM-x32\...\ma Livebox) (Version: 3.2.0.5 - Orange) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.7.205.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50709.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) Orange Inside (HKU\S-1-5-21-706769772-126148547-2541344145-1001\...\Orange Inside) (Version: V2.0.0.3 - Orange) Orange update (HKLM-x32\...\OrangeUpdateManager) (Version: 2.3.0.6 - Orange) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.3.15024.5 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.6.3.15024.5 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.) Serviio (HKLM\...\Serviio) (Version: - ) TomTom MyDrive Connect 4.1.0.2658 (HKLM-x32\...\MyDriveConnect) (Version: 4.1.0.2658 - TomTom) UBitMenu FR (HKLM-x32\...\{BBFAA659-FC2D-46cc-A8C0-BE0D03560F17}_is1) (Version: 01.04 - UBit Schweiz AG) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-706769772-126148547-2541344145-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Didier\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {16D880B1-9A0B-4392-A405-93443D5D90BF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated) Task: {29F0CD5E-3C86-4E2E-A27E-7CB7020C1223} - System32\Tasks\HP Photo Creations Communicator => C:\Users\Didier\AppData\Roaming\HP Photo Creations\Communicator.exe [2016-02-16] () Task: {47F557B2-C87C-41E5-A0EC-56A2B46E7CF3} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd) Task: {4BEA99E0-669C-43B2-AFA2-EFD9D23747E6} - System32\Tasks\HP AR Program Upload - 565ab556e90a4c75b5dd6788378d868159cbcb419132488aa813dfe18fdde465 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: ) Task: {88930372-7C76-46D2-9CB9-CC039F97CF5B} - System32\Tasks\Microsoft\Windows\orangeinside => C:\Users\Didier\AppData\Roaming\Orange\OrangeInside\OrangeInside.exe [2016-03-03] (Orange) Task: {9DE2B299-3285-44EB-90C2-2CF395D6C238} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-706769772-126148547-2541344145-1001Core => C:\Users\Didier\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.) Task: {B0868696-D18A-4146-9C7B-61128E10664D} - System32\Tasks\HP AR Program Upload - d899fa7569914081941a1a4e646aab7748bd18266f2f42a5b4f1081e4748ab50 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: ) Task: {B2A95B05-3DF2-4C19-B097-7FFBAA3EF3BB} - System32\Tasks\HP AR Program Upload - c25465d28f2d410eb96d2ae9ed22c7030754aa6c4be7409fbc872d7602660171 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: ) Task: {B8071F08-E6C9-4AC7-A88B-03CACB64436E} - System32\Tasks\HP AR Program Upload - d53004ea9d514fa38ed75dd645a3305035d8b8a191f84cafaed5449cfd51db04 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: ) Task: {F1AF5701-1260-430B-A2FF-23040F90C1DA} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-706769772-126148547-2541344145-1001UA => C:\Users\Didier\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-706769772-126148547-2541344145-1001Core.job => C:\Users\Didier\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-706769772-126148547-2541344145-1001UA.job => C:\Users\Didier\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\HP Photo Creations Communicator.job => C:\Users\Didier\AppData\Roaming\HP Photo Creations\Communicator.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\Didier\Desktop\Lanceur d'applications Google Chrome.lnk -> C:\App_Port\GoogleChromePortable_47\App\Chrome-bin\chrome.exe (Google Inc.) -> --user-data-dir="C:\App_Port\GoogleChromePortable_47\Data\profile" --show-app-list ShortcutWithArgument: C:\Users\Didier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://r.orange.fr/r/Oodc_IEshortcut_oi_v2?ref=O_OI_defaultPage_IE_odc_shortcut ShortcutWithArgument: C:\Users\Didier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Lanceur d'applications Google Chrome.lnk -> C:\App_Port\GoogleChromePortable_47\App\Chrome-bin\chrome.exe (Google Inc.) -> --user-data-dir="C:\App_Port\GoogleChromePortable_47\Data\profile" --show-app-list ShortcutWithArgument: C:\Users\Didier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome\Videostream for Google Chromecast™.lnk -> C:\App_Port\GoogleChromePortable_47\App\Chrome-bin\chrome.exe (Google Inc.) -> --user-data-dir="C:\App_Port\GoogleChromePortable_47\Data\profile" --profile-directory=Default --app-id=cnciopoikihiagdjbjpnocolokfelagl ShortcutWithArgument: C:\Users\Didier\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://r.orange.fr/r/Oodc_IEshortcut_oi_v2?ref=O_OI_defaultPage_IE_odc_shortcut ShortcutWithArgument: C:\Users\Didier\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (64-bit).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://r.orange.fr/r/Oodc_IEshortcut_oi_v2?ref=O_OI_defaultPage_IE_odc_shortcut ShortcutWithArgument: C:\Users\Didier\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Lanceur d'applications Google Chrome.lnk -> C:\App_Port\GoogleChromePortable_47\App\Chrome-bin\chrome.exe (Google Inc.) -> --user-data-dir="C:\App_Port\GoogleChromePortable_47\Data\profile" --show-app-list ==================== Loaded Modules (Whitelisted) ============== 2015-09-15 14:25 - 2015-09-15 14:25 - 00085800 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-09-15 14:25 - 2015-09-15 14:25 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2014-09-15 11:01 - 2014-09-15 11:01 - 01970544 _____ () C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe 2014-03-21 03:57 - 2014-03-21 03:57 - 00359936 _____ () C:\Program Files\Serviio\bin\ServiioService.exe 2015-05-16 02:26 - 2014-03-21 03:57 - 00007680 _____ () C:\Program Files\Serviio\lib\winp.x64.dll 2014-03-21 03:57 - 2014-03-21 03:57 - 00399360 _____ () C:\Program Files\Serviio\bin\ServiioConsole.exe 2014-09-15 11:01 - 2014-09-15 11:01 - 00549888 _____ () C:\Program Files (x86)\Orange\ma Livebox\dedicarz\netsnmp.dll 2014-09-15 11:01 - 2014-09-15 11:01 - 00182784 _____ () C:\Program Files (x86)\Orange\ma Livebox\dedicarz\ProxyDetection.dll 2014-09-15 11:01 - 2014-09-15 11:01 - 00157184 _____ () C:\Program Files (x86)\Orange\ma Livebox\dedicarz\pupnp.dll 2014-09-11 17:06 - 2014-09-11 17:06 - 00878592 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\platforms\qwindows.dll 2014-09-11 17:05 - 2014-09-11 17:05 - 00036352 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\bearer\qgenericbearer.dll 2014-09-11 17:06 - 2014-09-11 17:06 - 00038912 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\bearer\qnativerwifibearer.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00032256 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qdds.dll 2014-09-11 17:05 - 2014-09-11 17:05 - 00021504 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qgif.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00027648 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qicns.dll 2014-09-11 17:05 - 2014-09-11 17:05 - 00021504 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qico.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00381952 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qjp2.dll 2014-09-11 17:05 - 2014-09-11 17:05 - 00204800 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qjpeg.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00218112 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qmng.dll 2014-09-11 17:08 - 2014-09-11 17:08 - 00015872 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qsvg.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00015360 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qtga.dll 2014-09-11 17:15 - 2014-09-11 17:15 - 00307712 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qtiff.dll 2014-09-11 17:15 - 2014-09-11 17:15 - 00014848 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qwbmp.dll 2014-09-11 17:15 - 2014-09-11 17:15 - 00252928 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qwebp.dll 2016-10-07 02:15 - 2016-09-09 02:53 - 00035792 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2016-10-07 02:15 - 2016-09-09 02:53 - 00145864 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2016-10-07 02:15 - 2016-09-09 02:54 - 00019408 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\faulthandler.pyd 2016-10-07 02:15 - 2016-09-09 02:53 - 00116688 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2016-10-07 02:15 - 2016-09-09 02:53 - 00100296 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2016-09-12 16:41 - 2016-09-09 02:53 - 00018888 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\select.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00019760 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2016-10-07 02:15 - 2016-09-09 02:53 - 00694224 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00020816 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2016-10-07 02:15 - 2016-09-09 02:54 - 00123856 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 01682760 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00020808 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00105928 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32api.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00021312 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winffi.crt.compiled._winffi_crt.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00052024 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00038696 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\fastpath.pyd 2016-10-07 02:15 - 2016-09-09 02:53 - 00392144 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2016-10-07 02:15 - 2016-09-09 02:55 - 00020936 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00024528 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32event.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00116176 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32security.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00381752 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00124880 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32file.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00025424 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00024016 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00175560 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32gui.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00030160 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00043472 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32process.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00048592 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32service.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00057808 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32evtlog.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00024016 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32profile.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00246592 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00026456 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00028616 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32ts.pyd 2016-10-07 02:15 - 2016-09-09 02:54 - 00241104 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\_jpegtran.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00023376 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00020800 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00019776 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00020800 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00020280 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2016-10-07 02:15 - 2016-09-09 02:55 - 00350152 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00022352 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00024392 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2016-10-07 02:15 - 2016-09-09 02:51 - 00036296 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\librsync.dll 2016-10-07 02:15 - 2016-10-06 23:06 - 00084280 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2016-10-07 02:15 - 2016-10-06 23:06 - 01826096 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2016-10-07 02:15 - 2016-09-09 02:54 - 00083912 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\sip.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00531248 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 03928880 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 01972528 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00133424 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00224056 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00207672 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00020288 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winffi.user32._winffi_user32.pyd 2016-10-07 02:15 - 2016-09-09 02:58 - 00017864 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\libEGL.dll 2016-10-07 02:15 - 2016-09-09 02:58 - 01631184 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2016-10-07 02:15 - 2016-09-09 02:55 - 00060880 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\win32print.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00024904 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\winffi.winhttp.compiled._winffi_winhttp.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00546096 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00357680 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00042808 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd 2016-10-07 02:15 - 2016-10-06 23:06 - 00168760 _____ () C:\Users\Didier\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Didier\Desktop\2016-01-09 21.36.20.jpg:com.dropbox.attributes [1010] AlternateDataStreams: C:\Users\Didier\Documents\Signature.jpeg:3or4kl4x13tuuug3Byamue2s4b [95] AlternateDataStreams: C:\Users\Didier\Documents\Signature.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-706769772-126148547-2541344145-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Didier\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{CEB5EE9E-4C6B-4625-A1E1-A263000C7239}] => (Allow) C:\Users\Didier\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{9D9D6FF5-9C61-41EC-AA5C-BFFA8AD50040}] => (Allow) C:\Users\Didier\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{8F4811CC-6B17-4A4D-BAB6-4DA902F7B380}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe FirewallRules: [{426AA339-FA18-4A11-A512-7808B52B294F}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe FirewallRules: [{E2A797AA-3278-4E3F-8C54-AA7C0A6F2FA2}] => (Allow) C:\Program Files\Serviio\bin\ServiioConsole.exe FirewallRules: [{AD7B6078-2D98-4D0D-A0E6-F9D6C745BB4B}] => (Allow) C:\Program Files\HP\HP Photosmart 5520 series\Bin\DeviceSetup.exe FirewallRules: [{1FE33FCB-3A2C-4E1C-A5F9-FB4A81863932}] => (Allow) C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPNetworkCommunicator.exe FirewallRules: [{0E1C0625-4BC9-440D-8508-AA52FBDD949F}] => (Allow) C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [TCP Query User{0DB39B15-29A4-4857-A83F-0548475965E6}C:\users\didier\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\didier\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{0BD0C011-6CF7-4EE9-BE21-D2A4464FB226}C:\users\didier\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\didier\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{24E88489-D999-43E1-81DC-E90D26D1C397}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{69AF24A1-EEFC-4450-9701-9ED5081A8B1A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{8AA56B21-E40F-4F16-8777-B869A7E5E9B2}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{D8535417-248A-4BF7-973F-D89EFAB53E17}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{D9C4564F-4A74-4918-BA6A-F5EAF420E355}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{1ECA4E72-54A4-4C1E-9016-C4779136C172}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{43C75F9F-3929-4749-9AAE-739DAA5F1A41}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{8729FE6F-B149-4121-B285-264E663B736F}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [{70D95A53-3E07-45EC-A263-59A846621238}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [{31E05A41-1FCB-4C96-87FB-12934D87247D}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{884CAE46-5FD1-48A4-A4F8-22347FEC4F32}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{32F97274-01FB-48FD-89C0-1A820E6DCA54}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [{D098833B-A556-47BD-A000-38F61FB2EB4A}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [TCP Query User{BA7D6F2B-84E2-4B08-9EA0-D6915F6827AE}C:\app_port\googlechromeportable_41\app\chrome-bin\chrome.exe] => (Allow) C:\app_port\googlechromeportable_41\app\chrome-bin\chrome.exe FirewallRules: [UDP Query User{BD91B0AC-CDBC-46D6-8F03-9AA87DB23D4D}C:\app_port\googlechromeportable_41\app\chrome-bin\chrome.exe] => (Allow) C:\app_port\googlechromeportable_41\app\chrome-bin\chrome.exe FirewallRules: [TCP Query User{F58E36E4-1028-41F2-92F5-AD181ECD12EF}C:\app_port\googlechromeportable_47\app\chrome-bin\chrome.exe] => (Allow) C:\app_port\googlechromeportable_47\app\chrome-bin\chrome.exe FirewallRules: [UDP Query User{2AE3AC22-0320-49C9-BF7B-7AC20FE009D3}C:\app_port\googlechromeportable_47\app\chrome-bin\chrome.exe] => (Allow) C:\app_port\googlechromeportable_47\app\chrome-bin\chrome.exe FirewallRules: [{C668DC05-67A6-4316-831E-312B9B8FF7C1}] => (Allow) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe FirewallRules: [{113E667A-4BF7-4464-9D80-1DC5248C5698}] => (Allow) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe FirewallRules: [TCP Query User{BCA11305-7F7C-4991-9B73-0A52E19E91A7}C:\app_port\synkronportable\app\synkron\synkron.exe] => (Block) C:\app_port\synkronportable\app\synkron\synkron.exe FirewallRules: [UDP Query User{33391C10-2A5F-4CE4-B6FA-F4D680CBDE35}C:\app_port\synkronportable\app\synkron\synkron.exe] => (Block) C:\app_port\synkronportable\app\synkron\synkron.exe FirewallRules: [{E9FAC533-8DE0-477A-AF17-197F28B97856}] => (Allow) C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe FirewallRules: [{80BD7DE6-D5E9-4CBC-A869-99DC0891D973}] => (Allow) C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe ==================== Restore Points ========================= 18-08-2016 19:58:15 Windows Update 14-09-2016 13:59:31 Scheduled Checkpoint 23-09-2016 11:34:01 Windows Update 06-10-2016 16:40:44 JRT Pre-Junkware Removal 07-10-2016 12:03:55 Avant intervention de recherche tack 08-10-2016 13:56:05 Windows Update ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/08/2016 12:19:39 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme CCleaner64.exe version 4.11.0.4619 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 12d4 Heure de début : 01d2214d1d78632d Heure de fin : 361 Chemin d’accès de l’application : C:\Program Files\CCleaner\CCleaner64.exe ID de rapport : ac6c4d93-8d40-11e6-94b2-0015af3c8af0 Error: (10/07/2016 11:25:42 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 90080108). Error: (10/07/2016 10:31:03 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 80004005). Error: (10/07/2016 04:14:29 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 90080108). Error: (10/07/2016 03:53:37 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 80004005). Error: (10/06/2016 04:41:09 PM) (Source: VSS) (EventID: 12305) (User: ) Description: Erreur du service de cliché instantané des volumes : le volume/disque n’est pas connecté ou est introuvable. Contexte de l’erreur : DeviceIoControl(\\?\GLOBALROOT\Device\HarddiskVolumeShadowCopy1 - 000000000000013C,0x00530194,0000000000000000,0,00000000003D9FF0,4096,[0]). Operation: Query Shadow Copies Error: (10/06/2016 09:54:38 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 80004005). Error: (10/05/2016 02:14:19 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 80004005). Error: (10/04/2016 07:41:33 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 80004005). Error: (10/04/2016 12:44:36 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 80004005). System errors: ============= Error: (10/08/2016 01:42:48 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Le service Windows Update ne s’est pas fermé correctement après avoir reçu une commande d’anticipation de fermeture. Error: (10/08/2016 01:41:49 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Le serveur {F9717507-6651-4EDB-BFF7-AE615179BCCF} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/08/2016 12:22:25 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Le service Windows Update ne s’est pas fermé correctement après avoir reçu une commande d’anticipation de fermeture. Error: (10/08/2016 12:20:53 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Le serveur {F9717507-6651-4EDB-BFF7-AE615179BCCF} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/08/2016 12:14:28 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 12:12:51 le ‎08/‎10/‎2016 n’était pas prévu. Error: (10/08/2016 11:59:06 AM) (Source: BugCheck) (EventID: 1001) (User: ) Description: L’ordinateur a redémarré après une vérification d’erreur. La vérification d’erreur était : 0x000000ea (0xfffffa8002939940, 0x0000000000000000, 0x0000000000000000, 0x0000000000000000). Un vidage a été enregistré dans : C:\Windows\MEMORY.DMP. ID de rapport : 100816-24008-01. Error: (10/08/2016 11:59:05 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 11:56:43 le ‎08/‎10/‎2016 n’était pas prévu. Error: (10/06/2016 05:30:53 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: L’ordinateur a redémarré après une vérification d’erreur. La vérification d’erreur était : 0x000000ea (0xfffffa80027bd820, 0x0000000000000000, 0x0000000000000000, 0x0000000000000000). Un vidage a été enregistré dans : C:\Windows\MEMORY.DMP. ID de rapport : 100616-26301-01. Error: (10/06/2016 05:30:53 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 17:29:15 le ‎06/‎10/‎2016 n’était pas prévu. Error: (10/06/2016 03:06:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Windows Media Player Network Sharing Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 30000 millisecondes : Restart the service. ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz Percentage of memory in use: 83% Total physical RAM: 3071.12 MB Available physical RAM: 515.98 MB Total Virtual: 6140.42 MB Available Virtual: 3155.1 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.75 GB) (Free:388.53 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:244.14 GB) (Free:217.51 GB) NTFS Drive f: () (Fixed) (Total:687.36 GB) (Free:289.49 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 8680C043) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 89028902) Partition 1: (Active) - (Size=244.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=687.4 GB) - (Type=OF Extended) ==================== End of Addition.txt ============================